Skip to content

GRAL5389 Fixed vulnerabilities and TypeScript issue#61

Merged
pipedrive-public-gha-bot[bot] merged 10 commits intomasterfrom
GRAL-5389-SOC
Sep 24, 2025
Merged

GRAL5389 Fixed vulnerabilities and TypeScript issue#61
pipedrive-public-gha-bot[bot] merged 10 commits intomasterfrom
GRAL-5389-SOC

Conversation

@SpaceOven
Copy link
Copy Markdown
Contributor

Related Tickets & Documents

https://pipedrive.atlassian.net/browse/GRAL-5389

Description

Fixed all vulnerabilities and typescript errors related to incompatibility with @types/babel__traverse.

Type of PR?

Manual testing

  1. The vulnerability pointed by SOC is related to Jest, but there are currently no unit tests to run.
  2. The fixed issue with typescript can be tested by building the service (npm run build).

Automated tests added?

  • 👍 Unit tests
  • 👍 Functional tests
  • 👍 E2E tests
  • 🙅 N/A

Copilot AI review requested due to automatic review settings September 16, 2025 07:26
@SpaceOven SpaceOven requested a review from a team as a code owner September 16, 2025 07:26
Copy link
Copy Markdown

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR fixes security vulnerabilities and TypeScript compatibility issues by updating dependencies and modernizing the Node.js/npm version specification format.

  • Updated Jest from ^27.4.7 to ^30.1.3 to address security vulnerabilities
  • Updated TypeScript and ESLint dependencies to resolve compatibility issues with @types/babel__traverse
  • Modernized devEngines configuration to use the newer structured format with explicit runtime and packageManager specifications

Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.

@SpaceOven SpaceOven added npm-version-patch used for deployment npm-ready-for-publish used for deployment labels Sep 19, 2025
@dmitriyeff dmitriyeff removed npm-ready-for-publish used for deployment npm-version-patch used for deployment labels Sep 24, 2025
@dmitriyeff dmitriyeff self-assigned this Sep 24, 2025
@dmitriyeff dmitriyeff added the npm-version-patch used for deployment label Sep 24, 2025
@dmitriyeff dmitriyeff added the npm-ready-for-publish used for deployment label Sep 24, 2025
@dmitriyeff dmitriyeff removed the npm-ready-for-publish used for deployment label Sep 24, 2025
@dmitriyeff dmitriyeff added the npm-ready-for-publish used for deployment label Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff self-requested a review September 24, 2025 06:17
@dmitriyeff dmitriyeff removed the npm-ready-for-publish used for deployment label Sep 24, 2025
@dmitriyeff dmitriyeff added the npm-ready-for-publish used for deployment label Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff removed the npm-ready-for-publish used for deployment label Sep 24, 2025
@dmitriyeff dmitriyeff added the npm-ready-for-publish used for deployment label Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added the npm-ready-for-publish used for deployment label Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added npm-ready-for-publish used for deployment and removed npm-ready-for-publish used for deployment labels Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff removed the npm-ready-for-publish used for deployment label Sep 24, 2025
@dmitriyeff dmitriyeff requested a review from Copilot September 24, 2025 10:16
Copy link
Copy Markdown

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

Copilot reviewed 2 out of 5 changed files in this pull request and generated 1 comment.


Tip: Customize your code reviews with copilot-instructions.md. Create the file or learn how to get started.

Comment thread package.json
@dmitriyeff dmitriyeff added the npm-ready-for-publish used for deployment label Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added npm-ready-for-publish used for deployment and removed npm-ready-for-publish used for deployment labels Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added npm-ready-for-publish used for deployment and removed npm-ready-for-publish used for deployment labels Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added npm-ready-for-publish used for deployment and removed npm-ready-for-publish used for deployment labels Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added npm-ready-for-publish used for deployment and removed npm-ready-for-publish used for deployment labels Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@dmitriyeff dmitriyeff added npm-ready-for-publish used for deployment and removed npm-ready-for-publish used for deployment labels Sep 24, 2025
pipedrive-public-gha-bot Bot pushed a commit that referenced this pull request Sep 24, 2025
@pipedrive-public-gha-bot pipedrive-public-gha-bot Bot merged commit 2ee7e10 into master Sep 24, 2025
44 of 52 checks passed
@pipedrive-public-gha-bot pipedrive-public-gha-bot Bot deleted the GRAL-5389-SOC branch September 24, 2025 12:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

npm-ready-for-publish used for deployment npm-version-patch used for deployment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants